Please replace the paragraph in the specification beginning on page 18, line 3, with the 
following paragraph: 

Fig. 5 A illustrates a process flow and logic of a preferred embodiment of the 
invention. The process begins at step 501, when a user invokes the tool of the 
present invention during a given computing session on a computer on which the 
tool is executing. The tool receives as user input the user's user ID [[id]], the 
user's global password, and the set of global keys or hash values, 502. In a 
preferred embodiment, the tool receives the user input each time the user uses the 
client for a different computing session to minimize any non volatile storage 
requirements of the tool. In other embodiments, the set of hash values are stored 
for a particular user by user id and global user password. When a user accesses 
the tool, the user would then only have to input the user's user ID [[id]] and global 
password. The tool would then have access to the set of hash values stored for 
that user. 

Please replace the paragraph in the specification beginning on page 18, line 19, with the 
following paragraph: 

Then, when a user accesses a resource, such as a domain, that is requesting 
a user ID [[id]] and password, the user invokes the password generation function 
of the tool. For example, the user may select a button within a user interface of 
the tool running in a separate frame or window on the user's system. If the 
password generation function is invoked 503, the tool determines the resource 
domain name 504 being accessed; and uses the domain name, the global user 
password, and the hash value to generate a password 505. The tool then populates 
the resource with the generated password 506. 



following paragraph: 

Fig. 5B illustrates a process flow and logic of yet another embodiment of 
the invention. After receiving the user's initial input 502, the tool automatically 
recognizes when a password is being requested 513. The tool determines the 



Please replace the paragraph in the specification beginning on page J# line ^ with the 
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domain or resource name 514. When the domain is determined, the tool may 
access a database 600 (Fig. 6) that the tool has built in order to determine the 
iteration 612 of password generation that the tool has undertaken for the 
determined domain name 611. Referring back to Fig 5B, Fig. 5, once the iteration 
for that domain is determined 515, the corresponding hash value in the sequence 
of hash values for that iteration are determined 516. The tool generates the 
password from the domain name, the determined hash value, and the global user 
password 517. The tool determines whether the resource has a required format for 
the password 518 such as by examining format field 613 in database 600 for that 
resource 61 1 (Fig. 6). If it does, then the tool forces the generated password to 
conform to the format. The process continues such that the tool then 
automatically populates the domain with the generated password for that domain 
and for that iteration of the password 520. 

/ 

Please replace the paragraph in the specification beginning on page 20, line with the 
following paragraph: 

In one implementation of this invention, the tool can be installed on a 
remote device as described in co-pending U.S. Application Serial Number 
10/042.095 (Internal Dookot Number AUS9200105Q 8 USR For further security, 
it may be desirable for the user to utilize the user's user ID [[id]] and/or global 
password as a sign on to get access to the remote device or to get access to the 
tool thereon. The tool may also have stored therein a user profile having the set of 
global values, i.e., hash values. As such, instead of using a remote device to store 
a large number of passwords for all of the resources utilized by the user, the 
remote device would merely contain the tool that could generate the needed 
password on demand. 
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